Technology & Science
FBI–CISA PSA Flags Russian Intel Phishing That Hijacked Thousands of Signal Accounts
On 20 Mar 2026, the FBI and CISA publicly disclosed that a Russian-intelligence phishing campaign has already taken control of thousands of Signal and other encrypted-app accounts by tricking users rather than cracking encryption.
Focusing Facts
- Joint PSA dated 20 Mar 2026 says “thousands” of CMA accounts tied to U.S. officials, military, politicians, and journalists have been compromised worldwide.
- Investigators detail two exploits: (1) abuse of ‘linked-device’ QR codes to silently add an attacker’s phone, and (2) full account takeover after users surrender 2FA codes/PINs to impostor “support” messages.
- Dutch services (AIVD/MIVD) issued a similar nationwide warning one week earlier, indicating the same campaign had already reached Europe.
You've read the facts. The perspectives are behind this line.
Perspectives in this article
- Right-leaning U.S. media
- Cybersecurity trade press
- International media outside the U.S.